how i can close FTP port in windows XP

hi
 i want to prevent  user from use  FTP port in windows XP how i can do that

thanks
nasemabdullaAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

gidds99Commented:
This MSKB article outlines how to block applications using Windows XP Firewall and TCP/IP filtering:

http://support.microsoft.com/kb/875357

Hope this helps.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
gidds99Commented:
This article should also help with filtering TCP/IP ports to block FTP:

http://homepages.wmich.edu/~mchugha/w2kfirewall.htm
0
nasemabdullaAuthor Commented:
hi  gidds99
can i use mmc to do that and how only for FTP

thanks
0
Introducing the "443 Security Simplified" Podcast

This new podcast puts you inside the minds of leading white-hat hackers and security researchers. Hosts Marc Laliberte and Corey Nachreiner turn complex security concepts into easily understood and actionable insights on the latest cyber security headlines and trends.

anil_uCommented:
Use the 1st link provided and block TCP ports 20 and 21 - these are the ports used for FTP
0
Jeff BeckhamEngineerCommented:
Are you wanting to block inbound or outbound ftp?

If inbound, the simplest way to block inbound is to remove the FTP service on your computer (if it exists). You'll want to use Windows Firewall to block inbound FTP connections if you for some reason want it running on the computer.

If you're talking about blocking out FTP, you need to perform TCP/IP filtering.  The above link to the wmuch.edu site will provide you with the steps to perform the filtering via configuration of the local system policy.  You can also accomplish it via

Control Panel -> Network Connections -> Local Area Connection -> Properties
Scroll to Internet Protocol (TCP/IP), click Properties button -> Advanced button -> Options tab -> Properties button

You can enable port filtering here, but you need to explicitly define all allowed traffic so that the other stuff gets blocked out.  You'll have to do the same thing with the local system policy as outlined above.

Lastly, you could use some 3rd-part firewall software that will prevent certain executables from running or prevent certain types of outbound traffic  Some examples are:

http://www.zonelabs.com/store/content/catalog/products/sku_list_za.jsp?dc=12bms&ctry=US&lang=en&lid=nav_za
http://www.digitalriver.com/dr/v2/ec_Main.Entry17C?SID=26412&SP=10023&CID=0&PID=253470&PN=1&V1=253470&CUR=840&DSP=&PGRP=0&ABCODE=&CACHE_ID=0
http://www.symantec.com/home_homeoffice/products/internet_security/npf2006/index.html
0
gidds99Commented:
Yes, as anil_u menations above I would also suggest that you follow the process outlined in the 1st link I provided above:

http://support.microsoft.com/kb/875357
0
nasemabdullaAuthor Commented:
hi all
thanks for all
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
OS Security

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.